Announcement of Ratch Group Public Company Limited
No. 2/2022
Re: Privacy Policy

Ratch Group Public Company Limited (the “Company”) is aware of the importance of personal data protection and thus aims to have secured and clear management of personal data throughout the collection, use and disclosure, including retention thereof, for effective implementation in accordance with Personal Data Protection Act B.E. 2562 (2019) and its amendments, rules, regulations, announcements or orders relating thereto (“Data Protection Law”), to build trust and prevent negative impact to the Company’s personnel at all levels, including directors and executives of the Company. The Chief Executive Officer, therefore, revoked the Announcement of Ratch Group Public Co., Ltd. No. 3/2564 Re: Privacy Policy for Ratch Group Public Co., Ltd. dated 8 February 2021, and considered that it is appropriate to establish the Privacy Policy of the Company as described below:

  1. All directors, executives and employees of the Company shall strictly comply with laws, policies, regulations, provisions, manuals or any guidelines of the Company relating to personal data protection.
  2. Directors and executives in all departments shall build awareness and understanding regarding the importance of personal data protection and support privacy risk management at every level of the Company, including arranging for effective internal control measures to prevent unauthorized or unlawful collection, use or disclosure of personal data.
  3. The Company has appointed a Data Protection Officer (DPO) to provide advice, consultation and inspection of operations relating to the Company's collection, use or disclosure of personal data to comply with the Data Protection Law, including to coordinate and cooperate with the Office of the Personal Data Protection Committee. In this regard, the executives of the Company shall support the Data Protection Officer (DPO) by providing adequate tools and equipment and facilitating access to personal data for carrying out their duties properly.
  4. The collection of personal data shall be limited to the extent as it is necessary under the lawful purpose for the Company’s personal data processing only.
  5. The Company shall obtain explicit consent from the data subject for collection, use, or disclosure of personal data and shall inform the data subject of necessary details prior to or at the time of such collection as required by the Data Protection Law.
  6. The collection, use, or disclosure of personal data shall be in accordance with the purpose notified to the data subject prior to or at the time of such collection unless the law stipulates otherwise. The Company shall not collect personal data from other sources apart from the data subject directly, unless the Company has informed the data subject of the collection of personal data from other sources without delay and has obtained consent from the data subject, or has been exempted as stipulated by the Data Protection Law.
  7. All departments shall prepare and maintain the Data Inventory in accordance with requirements and methods of the Data Protection Law to enable the data subjects and the Office of the Personal Data Protection Committee to inspect such Data Inventory. The Company shall ensure that the Data Inventory is accurate, complete, up-to-date and absolute at all times.
  8. All departments shall establish appropriate and adequate security measures of personal data for preventing unauthorized or unlawful loss, access to, use, alteration, or disclosure of personal data in the Company's possession and shall regularly review such security measures, or when it is necessary, or when the technology has changed in order to ensure that the Company has security measures of personal data that are effective, sufficient, appropriate and in accordance with the Data Protection Law.
  9. All departments shall provide a monitoring system for deletion or destruction of the personal data after the expiration of the retention period or when the personal data is irrelevant or beyond the necessity for the purpose of personal data collection, except where the retention is for the purpose as stipulated by the Data Protection Law.
  10. In the event that the data processor is required to proceed with the collection, use, or disclosure of personal data pursuant to the orders given by or on behalf of the Company, the Company shall enter into an agreement with the data processor to supervise the performance of the data processor to be in accordance with the Data Protection Law and to prevent the data processor from using or disclosing such personal data unlawfully or beyond the specified scope.
  11. In the case where the Company discloses personal data in its possession to other entities or third parties, e.g., government authorities, supervisory authorities, or competent officials exercising power pursuant to the law, etc., according to their request, the Company shall ensure that the Company has obtained a consent for such disclosure from the data subject, unless it is the case where a consent for personal data disclosure is not required according to the Data Protection Law, for example, it is necessary for compliance with the law, or it is to prevent or suppress a danger to life, body or health of the person where the data subject is incapable of giving consent by whatever reason, or it is necessary for the establishment of legal claims, etc., as the case may be. In this regard, the Company shall maintain a record of such disclosure.
  12. In the case where it is necessary for the Company to send or transfer personal data to foreign countries, the Company shall ensure that the destination country that receives such personal data shall have adequate data protection standard.
  13. All relevant departments shall take any actions to support the data subject’s rights request according to the Data Protection Law, including providing a monitoring system of such proceedings to ensure that the data subject’s right requests are responded properly without delay and within the period required by the Data Protection Law. In the case where the Company rejects the data subject’s requests, the Company shall record such rejection of the data subject’s rights request together with reasons.
  14. All departments shall cooperate with the Data Protection Officer in notifying the Office of the Personal Data Protection Committee of any personal data breach without delay within 7 2 hours after having become aware of the breach unless such personal data breach is unlikely to result in a risk to the rights and freedoms of the data subject. In addition, if the personal data breach is likely to result in a high risk to the rights and freedoms of the data subject, the Company shall also notify the data subject of the personal data breach together with remedial measures without delay.
  15. All departments shall cooperate with the Data Protection Officer and the Office of the Personal Data Protection Committee when the Company is requested to submit documents or information regarding the personal data protection, including clarifying the facts to support the investigation and operations of the Data Protection Officer and the Office of the Personal Data Protection Committee.

This Privacy Policy applies to personnel of the Company at all levels, including directors and executives of the Company. Therefore, all personnel shall understand and comply with this Policy. In particular, the executives at all levels shall be the role model and support and push for serious practices throughout the organization. In this regard, the Privacy Notice, consent forms and other contracts are as attached hereto.

Please be informed and comply accordingly.

Announced on 8 April 2022

Chief Executive Officer

Other Policy
The Corporate Governance Policy
The Company’s Group sets practice guideline at the international standard to promote transparent and effective management and operations that lead to reinforcement of trust among shareholders, investors and all stakeholders; and to pursue the principles of Good Corporate Governance of listed companies.
Learn More
Supplier Code of Conduct
RATCH Group Public Company Limited (Company) realizes the importance of balancing environmental, social, and governance (ESG) considerations in our business practices.
Learn More
Human Rights Policy
RATCH Group Public Company Limited is aware that respect to human rights is an essential requirement of its business operations.
Learn More
Stakeholder Engagement Policy
The Company’s Board of Directors clearly specifies the policy and guideline on stakeholder groups. The Company’s Code of Conduct was reviewed and improved as the framework for directors, executives and employees in treating each stakeholder group including shareholders, employees, customers, creditors, partners, competitors, the government and communities around the Company’s premises,
Learn More
Risk Management Policy
RATCH Group Public Company Limited establish an international standard risk management system which will uphold the customer satisfaction and preferable returns to shareholders and all stakeholders based on good corporate governance.
Learn More
Shareholders Policy
In pursuance to the principles of Good Corporate Governance recommended by the Stock Exchange of Thailand to listed companies to comply with or to adapt to best fit the situation of each company, the Board of Directors stipulated the Company’s shareholders policy
Learn More
Employee Policy
The Company recognizes the employees as its valuable assets and key factor in driving its operations towards targeted success and that it attempts to manage, develop and retain its employees to create outputs for sustainable and progressive growth to the Company.
Learn More
Environmental And Social Policy
RATCH Group Public Company Limited has been committed to sustainable business development, to achieve continuous, solid and long-term growth. The Company is confident that the commitments to higher environmental, social and governance standards will not only keep risks manageable but also add the values of our operations that are geared towards positive impacts on society and minimized impacts on the environment.
Learn More
Safety, Occupational Health and Working Environment Policy
RATCH Group Public Company Limited (“the Company”) has determined the vision to become a leading value-oriented energy and infrastructure company in Asia Pacific. We realized that safety, occupational health and good working environment are vital for our employees, partners, suppliers, and visitors.
Learn More
Energy Conservation Policy
At present, the domestic demand on energy, including electricity consumption gradually increases due to rising population and industrial and economic expansion that cuts down the energy reserve.
Learn More
Office Building’s Environmental Management Policy
The Company appointed the Office Building’s Environmental Management Committee to efficiently and effectively operate office building’s environmental management according to the controlled building act, environmental, safety, occupational health and working environment laws, other relevant laws and regulations as well as the Company's Social and Environmental Policy of the Company,
Learn More
Network and Computer Usage Policy
The Company provides network system and computers for enhancing business operation efficiency to meet the business goal. Thus, the network system and computer are regarded as the Company’s important assets. Employees are required to carefully use and maintain such asset to be available for work.
Learn More
The 5 S Policy
In order to promote discipline, safety and good health to create pleasant working environment and good corporate image through participation of employees at all levels and with continuous practices that have been developed into corporate culture, the Company, therefore, provides the 5S activities based on the following objectives and goals:
Learn More
Anti-Fraud Corruption Policy
To ensure that the operations of RATCH Group Public Company Limited (“the Company”) are in accordance with international practice while being fair and transparent, to uphold corporate social responsibilities for all stakeholders to align with good corporate governance and business conduct, and to align with the Company’s declaration with Thailand’s Private Sector Collective Action Coalition against Corruption (CAC)
Learn More
Tax Policy
RATCH Group Public Company Limited sets forth the corporate tax policy, to ensure that the Company Group's operations comply with international standards, adhere to transparent and fair business practices, as well as uphold responsibility towards society and all stakeholders in accordance with good corporate governance and business ethics.
Learn More
Corporate Sustainability Policy
The company commits to operating business in principle of good corporate governance aiming for corporate sustainability which will bring shared value on economic, social and environment to its business value chain.
Learn More
Business Continuity Management Policy
To guide practices of Business Continuity Management of RATCH Group Public Company Limited in managing risks and any kind of crises in order to continue ongoing business operation, protect stakeholders’ interest, and maintain reputation, credibility and sustainability, the Company addressed the Business Continuity Management Policy
Learn More
Information Technology Security Policy
RATCH Group Public Company Limited hereby announced the Information Technology (IT) Security Policy, to ensure the IT system as well as the network and computer system of the Company, subsidiaries and affiliated companies sharing these systems is secure and continually supportive to the Company's operations; compliant with the Computer Crime Act and other relevant laws; and efficient in preventing harms and damage on the Company.
Learn More
Prevention of Misuse of Inside Information Policy
RATCH Group Public Company Limited realizes the importance of preventive measures against misuse and abuse of inside information by directors, executives, job operators and related parties, directly or indirectly for their own or others’ benefits. Whether returns are obtained or not, such act violates the Securities and Exchange Act, puts pressure on the Company’s interests, causes conflict of interest and is harmful to the Company’s credibility.
Learn More
RGCO Announcement on Environment, Occupational Health and Safety
Ratchaburi Electricity Generating Co., Ltd. operates the electricity generation business with 3,645 Megawatt in capacity, to address national power demand. The generation is fueled primarily by natural gas, with bunker oil and diesel oil as secondary fuels.
Learn More
Personal Data Protection Policy
RATCH Group Public Company Limited and its subsidiaries (“Company”) realize the potential measures of the protection of personal data. Pursuant to this personal data protection policy, it hereby explains on how the Company treats the process of data collection, preservation, use and disclosure of personal data, and related individual’s rights.
Learn More
Cookies Policy
This website is serviced by RATCH Group Public Company Limited (the “Company”). The Company’s website operates Cookies and other alike technologies that enables to access your internet-connected browser and devices e.g., computer, smartphone or tablet in order to remember your pattern and preferences during web visiting session.
Learn More
Giving/ Receiving of Gifts and Souvenirs
On the upcoming New Year's occasion, the company would like to announce the no gift practice to all employees adherence to the international standards of good governance and transparency in business operation and to align with the company’s Anti-Fraud Corruption Policy
Learn More
Charitable Donations and Sponsorships Order
In compliance with RATCH Group Public Company Limited Regulations on Anti-Fraud and Corruption (B.E.2562) and by the authorization granted under Section 2 (13.4) of RATCH Group Public Company Limited Regulations on Accounting, Finance and Budgeting B.E. 2562 as well as Section 1 (5) of RATCH Group Public Company Limited Regulations on Anti-Fraud and Corruption (B.E.2562), the Chief Executive Officer hereby issues the following order
Learn More